Filtered by vendor Reolink Subscriptions
Filtered by product Smart 2k+ Video Doorbell Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-55631 1 Reolink 1 Smart 2k+ Video Doorbell 2025-08-23 7.5 High
Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 was discovered to manage users' sessions system wide instead of an account-by-account basis, potentially leading to a Denial of Service (DoS) via resource exhaustion.
CVE-2025-55637 1 Reolink 1 Smart 2k+ Video Doorbell 2025-08-23 6.5 Medium
Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 was discovered to contain a command injection vulnerability via the setddns_pip_system() function.
CVE-2025-55626 1 Reolink 1 Smart 2k+ Video Doorbell 2025-08-23 5.3 Medium
An Insecure Direct Object Reference (IDOR) vulnerability in Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 allows unauthorized attackers to access the Admin-only settings and edit the session storage.
CVE-2025-55629 1 Reolink 1 Smart 2k+ Video Doorbell 2025-08-23 6.5 Medium
Insecure permissions in Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 allow attackers to arbitrarily change other users' passwords via manipulation of the userName value.